Skip to content

Commit

Permalink
Add suppression for graalvm compiler
Browse files Browse the repository at this point in the history
  • Loading branch information
barchetta committed Jul 29, 2024
1 parent 2360d3d commit 5b63db6
Showing 1 changed file with 10 additions and 0 deletions.
10 changes: 10 additions & 0 deletions etc/dependency-check-suppression.xml
Original file line number Diff line number Diff line change
Expand Up @@ -113,6 +113,16 @@
<vulnerabilityName>CVE-2024-20932</vulnerabilityName>
</suppress>

<!-- This low priority CVE does not apply to our use of the graalvm sdk.
-->
<suppress>
<notes><![CDATA[
file name: graal-sdk-22.3.0.jar
]]></notes>
<packageUrl regex="true">^pkg:maven/org\.graalvm\.sdk/graal-sdk@.*$</packageUrl>
<vulnerabilityName>CVE-2024-21138</vulnerabilityName>
</suppress>

<!--
This CVE is being disputed by the Jackson project and the community seems in agreement that this
CVE should be rejected. We are suppressing this for now to reduce noise in our scan and will
Expand Down

0 comments on commit 5b63db6

Please sign in to comment.